Scammers Get Creative With Disguised Downloads
Scammers who don't want to write their own malware can now pay just $20 to start a campaign of attacks. They can then customize their "bait" with Windows installations and non-fungible tokens (NFTs) among the ways to target users.
The malware is available on dark web sites. These are sites that are part of the world wide web, but set up in a way that means they aren't indexed by search engines. That makes them suitable for people who don't want their activities easily traced.
A piece of malware called BitRAT costs just $20 for lifetime access. The name derives from "remote access Trojan" which is a form of malware that scammer can distribute disguised as something else, then remotely access the victim's computer.
Download Sites Dubious
It's up to the individual scammer how they want to disguise and distribute it. Security researchers at AhnLab spotted one BitRAT campaign that used "Webhards", a type of online storage service in South Korea. They're commonly used to share files, often in ways that skirt around copyright and licensing laws. (Source: bleepingcomputer.com)
The latest campaign involves disguising BitRAT as an activation tool for Windows 10. The listings give the impression that it will let users run an installed copy of Windows 10 without the relevant licensing, for example from upgrading from Windows 7.
Once the victim has unwittingly installed BitRAT, the scammers have a wide range of tools available, including remotely controlling Windows; gathering information from the keyboard, clipboard and webcam; and stealing passwords.
NFT Curiosity Exploited
According to Wikipedia, NFTs are a "non-interchangeable unit of data stored on a blockchain, a form of digital ledger, that can be sold and traded. Types of NFT data units may be associated with digital files such as photos, videos, and audio." (Source wikipedia.org)
It seems to be almost a competition between scammers to figure out changing trends to find the best way to scam users by disguising BitRAT. Earlier this year some scammers had success distributing it through what appeared to be a spreadsheet about non-fungible tokens (NFTs). (Source: zdnet.com)
Depending on your viewpoint, NFTs are either a creative way to monetize digital assets such as artworks, or a modern equivalent of suckers buying land on the moon while helping destroy Earth.
Either way, it's a reminder of the importance of always taking care to assess the source and legitimacy of any downloaded file or software.
What's Your Opinion?
How do you vet software before installing it? Do people who download malware disguised as pirated software deserve any sympathy? If you were a scammer, what disguise would you use to distribute BitRAT?
Most popular articles
- Which Processor is Better: Intel or AMD? - Explained
- How to Prevent Ransomware in 2018 - 10 Steps
- 5 Best Anti Ransomware Software Free
- How to Fix: Computer / Network Infected with Ransomware (10 Steps)
- How to Fix: Your Computer is Infected, Call This Number (Scam)
- Scammed by Informatico Experts? Here's What to Do
- Scammed by Smart PC Experts? Here's What to Do
- Scammed by Right PC Experts? Here's What to Do
- Scammed by PC / Web Network Experts? Here's What to Do
- How to Fix: Windows Update Won't Update
- Explained: Do I need a VPN? Are VPNs Safe for Online Banking?
- Explained: VPN vs Proxy; What's the Difference?
- Explained: Difference Between VPN Server and VPN (Service)
- Forgot Password? How to: Reset Any Password: Windows Vista, 7, 8, 10
- How to: Use a Firewall to Block Full Screen Ads on Android
- Explained: Absolute Best way to Limit Data on Android
- Explained: Difference Between Dark Web, Deep Net, Darknet and More
- Explained: If I Reset Windows 10 will it Remove Malware?
My name is Dennis Faas and I am a senior systems administrator and IT technical analyst specializing in cyber crimes (sextortion / blackmail / tech support scams) with over 30 years experience; I also run this website! If you need technical assistance , I can help. Click here to email me now; optionally, you can review my resume here. You can also read how I can fix your computer over the Internet (also includes user reviews).
We are BBB Accredited
We are BBB accredited (A+ rating), celebrating 21 years of excellence! Click to view our rating on the BBB.